Patient Record Management System Code Projects Patient Record Management System

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Code Projects Patient Record Management System.

By the Year

In 2025 there have been 21 vulnerabilities in Code Projects Patient Record Management System with an average score of 8.1 out of ten. Last year, in 2024 Patient Record Management System had 1 security vulnerability published. That is, 20 more vulnerabilities have already been reported in 2025 as compared to last year.

Year Vulnerabilities Average Score
2025 21 8.12
2024 1 0.00

It may take a day or so for new Patient Record Management System vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Code Projects Patient Record Management System Security Vulnerabilities

Patient Record Mgt Sys 1.0 – SQLi in urinalysis_record.php via itr_no (remote)
CVE-2025-5857 8.8 - High - June 09, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /urinalysis_record.php. The manipulation of the argument itr_no leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

CRMS 1.0 Birthing.php SQLi via itr_no/comp_id
CVE-2025-5779 7.5 - High - June 06, 2025

A vulnerability has been found in code-projects Patient Record Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /birthing.php. The manipulation of the argument itr_no/comp_id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Patient Record Management System 1.0 SQLi via itr_no in /view_dental.php
CVE-2025-5780 7.5 - High - June 06, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /view_dental.php. The manipulation of the argument itr_no leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Critical SQLi in view_hematology.php via itr_no in CPRMS 1.0
CVE-2025-5762 7.5 - High - June 06, 2025

A vulnerability, which was classified as critical, was found in code-projects Patient Record Management System 1.0. Affected is an unknown function of the file view_hematology.php. The manipulation of the argument itr_no leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

CVE-2025-5674: SQLi via urinalysis_id in Patient Record Management Sys 1.0
CVE-2025-5674 8.8 - High - June 05, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file urinalysis_form.php. The manipulation of the argument urinalysis_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Patient Record Mgmt Sys 1.0: SQLi via itr_no in sputum_form.php
CVE-2025-5627 7.5 - High - June 05, 2025

A vulnerability classified as critical was found in code-projects Patient Record Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /sputum_form.php. The manipulation of the argument itr_no leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Code-Projects PRMS 1.0 SQLi via itr_no in fecalysis_form.php
CVE-2025-4459 8.8 - High - May 09, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file fecalysis_form.php. The manipulation of the argument itr_no leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Critical SQLi in code-projects PRMS 1.0 /edit_upatient.php ID
CVE-2025-4458 8.8 - High - May 09, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /edit_upatient.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Patient Record Management System 1.0 – SQLi via lastname in /edit_xpatient.php
CVE-2025-4197 8.8 - High - May 02, 2025

A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is an unknown function of the file /edit_xpatient.php. The manipulation of the argument lastname leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

SQL Injection

Critical PHP SQLi in CP Patient Record System 1.0 /edit_spatient.php
CVE-2025-4021 7.5 - High - April 28, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0. It has been classified as critical. This affects an unknown part of the file /edit_spatient.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

CRITICAL SQLI in PRMS 1.0 /edit_rpatient.php.php
CVE-2025-3955 7.5 - High - April 27, 2025

A vulnerability, which was classified as critical, was found in codeprojects Patient Record Management System 1.0. This affects an unknown part of the file /edit_rpatient.php.php. The manipulation of the argument id/lastname leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi via ID in code-projects Patient Record Mgmt System 1.0 (edit_fpatient.php)
CVE-2025-3685 8.8 - High - April 16, 2025

A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is an unknown function of the file /edit_fpatient.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

PatientRecordMgmtSys 1.0: SQLi via /edit_dpatient.php ID
CVE-2025-3348 8.8 - High - April 07, 2025

A vulnerability classified as critical was found in code-projects Patient Record Management System 1.0. This vulnerability affects unknown code of the file /edit_dpatient.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Critical SQLi in code-projects PRMS 1.0 /dental_pending.php via ID
CVE-2025-3347 8.8 - High - April 07, 2025

A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. This affects an unknown part of the file /dental_pending.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi in Patient Record Mgmt Sys 1.0 via itr_no (dental_not.php)
CVE-2025-3304 8.8 - High - April 05, 2025

A vulnerability, which was classified as critical, was found in code-projects Patient Record Management System 1.0. This affects an unknown part of the file /dental_not.php. The manipulation of the argument itr_no leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi via itr_no in PRS 1.0 birthing_record.php
CVE-2025-3303 7.5 - High - April 05, 2025

A vulnerability, which was classified as critical, has been found in code-projects Patient Record Management System 1.0. Affected by this issue is some unknown functionality of the file /birthing_record.php. The manipulation of the argument itr_no leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Patient Record Management System 1.0 :: SQLi via /dental_form.php (critical)
CVE-2025-3243 8.8 - High - April 04, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /dental_form.php. The manipulation of the argument itr_no/dental_no leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Critical SQLi in code-projects PRMS 1.0 birthing_print.php
CVE-2025-3211 7.5 - High - April 04, 2025

A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. This affects an unknown part of the file /birthing_print.php. The manipulation of the argument itr_no/birth_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Patient Record Management Sys 1.0: SQLi via itr_no in /xray_print.php
CVE-2025-3208 7.5 - High - April 04, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /xray_print.php. The manipulation of the argument itr_no leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi in code-projects PRMS 1.0 birthing_pending.php (critical)
CVE-2025-3210 7.5 - High - April 04, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /birthing_pending.php. The manipulation of the argument birth_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Critical SQLi in code-projects Patient Record Management System 1.0 – birth_id
CVE-2025-3207 7.5 - High - April 04, 2025

A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /birthing_form.php. The manipulation of the argument birth_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Code-Projects Patient Record Mgmt 1.0 login.php: SQLi
CVE-2024-9034 - September 20, 2024

A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file login.php. The manipulation of the argument username leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Code Projects Patient Record Management System or by Code Projects? Click the Watch button to subscribe.

subscribe